Read Capabilities
ops.request.read— View request details and linked ticketsops.asset.read— Query asset inventory and assignment historyops.vendor.read— Access vendor profiles and risk scoresops.policy.read— Read active policies and their scopesops.kpi.read— View operational metrics and trend reports
Write Capabilities
ops.ticket.update— Change ticket status, assignee, or priorityops.asset.update— Modify asset assignment, location, or statusops.vendor.update— Update vendor contact, risk tier, or contract datesops.approval.submit— Create a new approval request with linked evidenceops.approval.decide— Approve or reject a pending request within your scope
Communication Capabilities
ops.ticket.comment— Add a public or internal comment to a ticketops.vendor.message— Send a templated message to a vendor contactops.broadcast.policy— Publish a policy update to affected queues
Workflow Capabilities
ops.workflow.requestFulfillment— Trigger the full request fulfillment pipelineops.workflow.vendorOnboarding— Kick off due diligence and contract review stepsops.workflow.assetProvisioning— Initiate procurement, assignment, and record creationops.workflow.approvalRouting— Route an approval through delegation and escalation rulesops.workflow.kpiReview— Launch metric collection, normalization, and alert evaluation
Capabilities are resolved at runtime against the actor identity, the target entity, and the active policy set. A capability denied at authorization returns a reason code that Twin surfaces for escalation.